RUS  ENG
Full version
JOURNALS // Prikladnaya Diskretnaya Matematika. Supplement // Archive

Prikl. Diskr. Mat. Suppl., 2020 Issue 13, Pages 119–121 (Mi pdma515)

This article is cited in 1 paper

Computational methods in discrete mathematics

On differentials for the modification of the cipher Simon based on the Lai — Messi scheme

A. A. Belousovaab, N. N. Tokarevaba

a Novosibirsk State University
b Sobolev Institute of Mathematics, Siberian Branch of the Russian Academy of Sciences, Novosibirsk

Abstract: We consider the block iterative cipher Simon based on the Feistel network and its modification based on the Lai — Messi scheme. Received estimates of differentials of the considered ciphers are compared. The results show that after $12$ rounds, estimate of the maximum probability of a differential for the modified cipher Simon $32/64$ without adding an orthomorphism is $2^{-24}$, and with the addition of orthomorphism is between $2^{-24}$ and $2^{-63}$, while the estimate of maximum probability for the original version is $2^{-36}$.

Keywords: Lay — Massey scheme, Feistel network, differential cryptanalysis.

UDC: 519.7

DOI: 10.17223/2226308X/13/35



© Steklov Math. Inst. of RAS, 2024